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1* To study the taplications of paragraph. 9d of "Report of the UK/tJS 
CC8MSEC Conference" (AFSAC 63/63) which recconcnded release of the British 
device "Mercury" to NATO* 

2* To study the question of the release of the CSP 29 00 to the British 
for purely Combined use, as an interim solution to the replacement of the 
CCH* 



FACTS BEARING ON THE PROBLEM AND DISCUSSION 
3* See Enclosure "3** 

CONCLUSIONS 



4* It is concluded that: 

• .« j Paragraph 9d of "Report of the UK/US CCW3EC Conference" (APSAC 
63/63) should be approved* There should, however, be added to the 
report a general note to this effect: 

"In all cases where crypto-equipmcnts are to be made available 
to NATO, the revelation of cxyptoprinciples involved should be 
restricted to general summaries and descriptions, and should not 
include specific wiring details, drawings, etc*, until after the 
equipment Is in production •" 

] 2 » The development by the UK of & cipher machine incorporating 
principles so similar to those of the CSP 2900 as are those of 
"Mercury" makes it obvious that the principles of CSP 2900 can no 
longer be regarded as the exclusive property of the US} but there 
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1b still valid reason for continuing to keep from the UK detailed 
knowledge of the CSF 2900* There ie not, however, any valid reason 
for continuing to keep frota the UK detailed knowledge of the ECM* 

£• there are uses, in Comhined communications, to which the available 
quantity of ECMs might well be put, and these uses would improve the 
security of Combined communications* 

mmmmm 

4 » It is recommended that: 

1* the conclusions be approved* 

£>* the meaorandum attached as enclosure be forwarded to the Joint 
Chiefs of Staff* 

£• The "Report of the CK/US CQIISEC Conference* be emended to Include 
the paragraph contained in paragraph of the Conclusions* 
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SUBJECT: Release of the Principles of the CSP 2900 to the 
U.K., Canada, Australia, and New Zealand 



1* The cipher machine CSP 2900 and its predecessor, the ECM, have 
been retained for exclusive US use under tho terns of paragraph 30813© 
of n Joint Action of the Armed Forces * w 



2* The Armed Forces Security Agency Council, having studied the require- 
ments for improving the security of Combined cocuunications with the 
United Kingdom, Canada, Australia, and New Zealand, now recommends that 
the principles of the ECK be authorised for release to the above-mentioned 
countries, and that issue to them of the ECM, within the limits of availa- 
bility, also be authorised* These recommendations are based cm the 
following reasoning! 

&» The UK has developed, for Ccmzac»xwcalth use and for offer to the 
NATO nations, a teletypo cipher jaachino known as Mercury** which has 
a c r ypt op rinciple very similar to that of the CSP 2900 and Is adjudged 
by the US experts to be even more secure. The similarity in principle, 
even though the details differ and the CSP 2900 i» not a teletype machine, 
makes it apparent that the basic principle of the CSP 2900 can no longer 
be considered exclusively US* There is no evidence, however, to indicate 
that the details of the CSP 2900 are known to anyone other than US 
personnel* 

] 2 * The ECM, although containing the same basic cryptoprinciple as 
the CSP 2900, differs In detail to the extent that loss of the ECM 
would not permit successful crypt analytic attack on the CSP 2900* 

£* The CCM, in current use for Combined cccaaimlcaticms, la outmoded, 
exists in insufficient quantity to meet all demands, and, particularly 
free the standpoint of high command ccmriurd.cations and those dealing 
with intelligence, is considered Inadequate* 
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4* The US Armed. Forces are now operating under an agreed ’’Plan for 
the Development and Dee of Cryptographic Equipment and Principles. 1 * 

The long-range portion of the plan provides for the development of 
equipments Which will be retained for exclusive US use in both the 
literal and the teletype coocwni cat ions security fields. 

jg. In the Jwantlne the US, although releasing the details of the ECM, 
would continue to retain inviolate the details of the CSP 2900. Retention 
of these details for exclusive US use satisfied the requirement of para- 
graph 303l3e of "Joint Action of the Anaed Forces*" 



3* It is recccsaencied that the Joint Chiefs of Staff approve: 

£• Disclosure of the details of the ECM to appropriate British 
authorities (Cypher Policy Board) by the Director* Armed Forces Security 
Agency* 

&• Initiation of action hT the Director 5 Armed Forces Security Agency, 
with appropriate British authorities (Cypher Policy Board) for utilisation 
in Combined coKEurd cations of such ECKs as can be made available* 
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1* With regard to part 1 of the problem: 

&* ^Mercuiy”, a Brltifihstrwented device, contains cryptoprinciples 
so similar to those of the CSP 2900 that to offer the former to NATO 
amounts to giving away those principles which the US has retained for 
its own use in the past* 

32 * boss to an enemy of the "Mercury* would in no way endanger the 
security of US cannunications enciphered in the CSP 2900, since, 
although similar in principle. Mercury and the CSP 2900 differ in detail* 
£• Complete revelation to other NATO nations of the minute details of 
any crypt; oprinciple prior to its embodiment in a manufactured version 
is a practise to he avoided, since such detail would permit a nation 
to produce its own embodiments even though the final US equipment might 
be officially rejected for NATO use* 

2* With regard to part 2 of the problems 

St* Tho CCH currently in use for Combined as wall as NATO traffic is 
outmoded and inadequate, particularly for highest-level and intelligence 
traffic* 

32* The appearance of the principles of the CSP 2900 in "Mercury” wakes 
it obvious that the cryptographers of the UK are thoroughly familiar 
with the broad principles of the CSP 2900. This does not mean, however, 
that the UK is familiar with the details of application of the principles 
within the CSP 2900* 

£+ The CSP 2900 includes the same basic principles as does the ECM, 
its predecessor, but again differs sufficiently in detail to mean that 
revelation of the principles of the ECM would not provide exact knowledge 
of the CSP 2900* Cxyptanalytic attack with high speed analogues requires 
knowledge of specific details; therefore, even should knowledge of the 
details of the ECM became known to m enemy cryptanalyst, he could not 
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use that knowledge to direct intelligently a high speed analogue 
attack on the CSP 290 0* 

&* Release of the HM to the UK would permit use of a very strong 
machine for some Combined communications and would still permit com-' 
pllance with paragraph 30813 e of Joint Action of the Armed Forces, 
which requires retention for exclusive US use of our most secure 
cryptographic system. Such release would not jeopardise the security 
of OS canmnications » 

£. there are not sufficient quantities of either CSP 2900 co? ECM 
la existence to permit the offer of spy large quantity to tho UK. 

They are sufficient, however, to meet some of the more ■urgent high 
coraoand and special requirements. The UK, if such an offer were to be 
made, should have a voice in determining the uses to which the quantity 
which could be offered might best be put. 
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